Skip to content

Commit

Permalink
libraw: add patch for CVE-2023-1729
Browse files Browse the repository at this point in the history
  • Loading branch information
risicle committed Aug 12, 2023
1 parent 9f039b9 commit f40c84b
Showing 1 changed file with 16 additions and 1 deletion.
17 changes: 16 additions & 1 deletion pkgs/development/libraries/libraw/default.nix
Original file line number Diff line number Diff line change
@@ -1,4 +1,11 @@
{ lib, stdenv, fetchFromGitHub, autoreconfHook, lcms2, pkg-config }:
{ lib
, stdenv
, fetchFromGitHub
, fetchpatch
, autoreconfHook
, lcms2
, pkg-config
}:

stdenv.mkDerivation rec {
pname = "libraw";
Expand All @@ -11,6 +18,14 @@ stdenv.mkDerivation rec {
sha256 = "sha256-K9mULf6V/TCl5Vu4iuIdSGF9HzQlgNQLRFHIpNbmAlY";
};

patches = [
(fetchpatch {
name = "CVE-2023-1729.patch";
url = "https://github.com/LibRaw/LibRaw/commit/9ab70f6dca19229cb5caad7cc31af4e7501bac93.patch";
hash = "sha256-OAyqphxvtSM15NI77HwtGTmTmP9YNu3xhZ6D1CceJ7I=";
})
];

outputs = [ "out" "lib" "dev" "doc" ];

propagatedBuildInputs = [ lcms2 ];
Expand Down

0 comments on commit f40c84b

Please sign in to comment.